Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode and when the agent is bound to 0.0.0.0 (all interfaces), opens sockets in non-exclusive mode, which allows local users to hijack the socket, and capture data or cause a denial of service (loss of daemon operation).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mandiant First Response FRAgent守护程序劫持代理漏洞
Vulnerability Description
Mandiant First Response是一款事件响应工具,用于收集所运行进程、系统服务之类的系统信息。 Mandiant First Response中存在多个安全漏洞,具体如下:通过代理劫持导致HTTP或SSL代理拒绝服务 FRAgent守护程序允许其他进程绑定到正在监听的同一套接字地址。如果FRAgent被绑定到了0.0.0.0通配符地址(所有接口)的话,恶意进程就可以通过绑定到特定IP地址的同一端口上拦截客户端连接。通过使用不响应的监听程序劫持代理,攻击者就可以阻止所有合法的客户端连接。
CVSS Information
N/A
Vulnerability Type
N/A